CVE Database
/

CVE-2025-0498

Back to search

CVE-2025-0498

Published: Jan 30, 2025

Modified: Feb 12, 2025

PUBLISHED

Description

A data exposure vulnerability exists in all versions prior to V15.00.001 of Rockwell Automation FactoryTalk® AssetCentre. The vulnerability exists due to insecure storage of FactoryTalk® Security user tokens, which could allow a threat actor to steal a token and, impersonate another user.

VendorProductVersions

Rockwell Automation

FactoryTalk® AssetCentre

affected
All prior to V15.00.001

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now